: New Artifact Types
Focus
Focus

New Artifact Types

Table of Contents

New Artifact Types

AutoFocus™ now provides the following artifact types that you can use to perform an AutoFocus search. The AutoFocus API also supports these new artifacts.
Artifact Type
Search with this Artifact Type to Find...
Mac Embedded File
Internal files in a Mac app installer or a Mac app bundle. Details for an embedded file can include the SHA256 and name of the installer or bundle, the file’s SHA1 hash, filename, file format, file location, SHA256 hash, the signature associated with the file and the name of the signer, the SHA1 hash for the signature, signature status, and the file size in bytes. You can find this artifact in the file analysis details of a sample, under the WildFire® Static Analysis section.
Region (Sample)
The WildFire cloud that analyzed a sample. See WildFire Cloud Artifacts for more information. You can find this artifact in the file analysis details of a sample.
Region (Session)
The WildFire cloud associated with a session. See WildFire Cloud Artifacts for more information. You can find this artifact in session details.
Upload Source
The source that requested a WildFire verdict for a sample or submitted a sample to WildFire. You can find this artifact in session details. Choose from a list of possible upload sources:
  • Firewall
    —Samples that a Palo Alto Networks® firewall forwarded to WildFire.
  • Proofpoint
    —Samples submitted to WildFire through Proofpoint products.
  • Traps
    —Samples submitted through Traps.
  • Manual API
    —Samples uploaded manually through the WildFire API or through the WildFire public portal.
  • WF Appliance
    —Samples that a WildFire WF-500 appliance submitted to the WildFire public cloud.
For a graphical overview of the top upload sources in your network, industry, or globally, add the Upload Source widget to the AutoFocus Customizable Dashboard.

Recommended For You